Manager, Government Compliance & Authorization
A
AmwellHealthcare Technology
Remote USFull-TimeManager
Salary$126,180 - $154,220
Apply NowOpens the employer's application page
Job Details
- Experience
- 7+ years of experience in information security, compliance, or risk management
- Required Skills
- HIPAARisk Management
Requirements
- 7+ years of experience in information security, compliance, or risk management
- At least 3 years specifically working with FedRAMP authorizations
- Demonstrated experience successfully achieving FedRAMP High authorization for a cloud service offering (CSO)
- Deep knowledge of NIST SP 800-53 Rev 5 security controls, FISMA, and FedRAMP baselines
- 3+ years of people management experience
- Strong understanding of cloud infrastructure security (AWS, Azure, or GCP)
- Familiarity with healthcare compliance frameworks such as HIPAA and HITRUST
- Proven project management skills for multi-stakeholder authorization efforts
- Bachelor's degree in Information Security, Computer Science, or related field
- Ability to obtain and maintain security clearance if required
Responsibilities
- Lead the end-to-end authorization process for FedRAMP High, while concurrently driving alignment with CMMC Level 2/3 and MARS-E 2.2
- Manage ongoing FedRAMP continuous monitoring requirements, including monthly deliverables, vulnerability management, and incident reporting
- Collaborate with engineering, security, and operations teams to develop a 'comply once, satisfy many' strategy mapping NIST controls
- Coordinate with 3PAOs to manage security assessment and authorization (SA&A) activities
- Develop and maintain FedRAMP authorization packages including System Security Plans (SSP) and Plans of Action and Milestones (POA&M)
- Build and lead a team of compliance analysts and security specialists
- Serve as primary point of contact for federal agency customers regarding authorization matters
View Full Description & ApplyYou'll be redirected to the employer's site